Wireshark 4.6.6 Released, (Sun, May 24th)
2026-05-25T01:23:45Z•246b2cb52ebe082a812fc49497ad8e3c1113d60d93cf4fadeb2300cf40d197f2
CheckmarxJenkinsTeamPCPincident-responsemalwarenodejsnpmpodcastproxyingpypistealersupply-chainthreat-actortoolingtrainingvulnerabilitywiresharkworm
What happened
A batch of SANS ISC diary items covering multiple security topics: Wireshark 4.6.6 was released (fixes 1 vulnerability and 11 bugs). A cross‑platform Node.js stealer was analyzed (SHA256 049300aa5dd774d6c984779a0570f59610399c71864b5d5c2605906db46ddeb9). Ongoing TeamPCP supply‑chain activity is highlighted, including an officially confirmed Checkmarx Jenkins plugin compromise and a new self‑spreading "Mini Shai‑Hulud" worm propagating via npm and PyPI. Other entries cover selective HTTP proxying tools for Linux, training on developing Windows implants/shellcode, and regular ISC Stormcast pods.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- sans_isc_diary
- Record identifier
- 246b2cb52ebe082a812fc49497ad8e3c1113d60d93cf4fadeb2300cf40d197f2
- Enrichment time
- 2026-05-25T01:23:45Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.